Software Mind logo
Software Mind

Software House focused on results since 1999

Senior Security Analyst – Application Security, DevSecOps

DevOps EngineerDevOps EngineerFull TimeRemoteSeniorTeam 1,001-5,000Since 1999H1B No SponsorCompany SiteLinkedIn

Location

Costa Rica

Posted

5 days ago

Salary

0

Seniority

Senior

Bachelor Degree5 yrs expEnglishAWSAzureCloudSDLC

Job Description

Senior Security Analyst – Application Security, DevSecOps

Software Mind

• Partner with development teams to embed secure coding practices throughout the SDLC, shifting security from a final gate to a shared, integrated responsibility • Assess current development practices against Secure SDLC standards, identify gaps, and drive a phased maturity roadmap with measurable milestones • Lead developer enablement initiatives — secure coding guidance, threat modeling, and a security champions program — that build durable capability within engineering teams • Integrate and tune SAST, DAST, SCA, and secrets scanning in CI/CD pipelines (Azure DevOps, Bitbucket) to deliver fast, in-workflow feedback with minimal friction • Evaluate prospective products, platforms, SaaS tools, and developer tooling to confirm alignment with security best practices before adoption • Conduct architecture and design reviews, assessing authentication, authorization, data handling, encryption, logging, and multi-tenancy considerations • Review third-party and supply chain risk — dependencies, integrations, AI/ML components, and vendor security posture — and define conditions for safe use • Produce clear, risk-based assessments and recommendations (approve, approve-with-conditions, or reject) for engineering and security leadership • Partner with vendor risk and compliance functions to align product reviews with SOC 2 and broader control requirements • Implement policy-as-code guardrails and infrastructure-as-code security controls across Azure/M365 cloud environments • Drive cloud posture improvements — configuration hardening, CIS benchmark alignment, WAF, and network segmentation • Establish supply chain security controls including dependency governance and code signing

Job Requirements

  • 5+ years of experience in Application Security, DevSecOps, or a similar role
  • Demonstrated experience maturing an engineering organization through Secure SDLC adoption — not just deploying tools
  • Hands-on AppSec and DevSecOps background: SAST/DAST/SCA, CI/CD pipeline security, secrets management
  • Strong product and technology security review experience — ability to assess a new platform or tool and articulate concrete risks and mitigations
  • Experience with CI/CD and source control tooling (Azure DevOps, Bitbucket, or equivalents)
  • Familiarity with secure development frameworks (NIST SSDF, OWASP SAMM/ASVS, BSIMM)
  • Cloud security experience in AWS and/or Azure
  • Strong collaboration and communication skills — able to coach developers and present risk to both technical and executive audiences
  • +90% English proficiency (written and spoken, minimum B2 level)

Benefits

  • Flexible schedules
  • An authentic work-life balance
  • Payment in US Dollars

Related Categories

Related Job Pages

More DevOps Engineer Jobs

Huzzle.com logo

Senior DevOps Engineer

Huzzle.com

The human intelligence platform for training and evaluating AI

DevOps Engineer5 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

• Architect, implement, and maintain scalable cloud infrastructure environments. • Design and optimize CI/CD pipelines for high-frequency deployments. • Manage Kubernetes clusters and container orchestration environments. • Build Infrastructure-as-Code solutions using Terraform and automation best practices. • Improve platform reliability, scalability, and system observability. • Monitor production systems using Prometheus, Grafana, ELK Stack, or similar tools. • Implement security, backup, and disaster recovery best practices. • Troubleshoot infrastructure, networking, and deployment issues across environments. • Collaborate with engineering teams on release management and platform optimization. • Mentor junior engineers and contribute to DevOps best practices across the organization.

Poland
Huzzle.com logo

Senior DevOps Engineer

Huzzle.com

The human intelligence platform for training and evaluating AI

DevOps Engineer5 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

• Architect and manage scalable cloud infrastructure environments. • Lead CI/CD automation and deployment optimization initiatives. • Implement Kubernetes orchestration and container management solutions. • Develop Infrastructure-as-Code solutions using Terraform or similar tools. • Improve observability, monitoring, and incident response workflows. • Support system security, scalability, and disaster recovery planning. • Mentor junior engineers and contribute to DevOps best practices. • Collaborate with cross-functional teams on infrastructure and release planning.

South Africa
Huzzle.com logo

Senior DevOps Engineer

Huzzle.com

The human intelligence platform for training and evaluating AI

DevOps Engineer5 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

• Design and manage scalable, secure, and highly available cloud infrastructure. • Build and optimize CI/CD pipelines for reliable software delivery. • Manage Kubernetes environments and container orchestration systems. • Implement Infrastructure-as-Code solutions using Terraform or similar tools. • Improve platform observability, monitoring, and incident response processes. • Collaborate with engineering teams on release automation and deployment workflows. • Troubleshoot production infrastructure and application performance issues. • Support cloud security, compliance, backup, and disaster recovery initiatives. • Contribute to platform scalability, reliability, and cost optimization efforts. • Mentor junior engineers and promote DevOps best practices across teams.

United States
Hootsuite logo

Senior Software Developer, DevOps

Hootsuite

Hootsuite is a social media-management system that allows organizations to execute campaigns across multiple networks using a web-based dashboard. The history of the company dates

DevOps Engineer5 days ago

Role Description We’re looking for a Senior DevOps Developer who can help us support the development organization to deliver value to customers in a reliable, efficient, and safe manner. You’ll be working in a focused team that owns one or more pieces of the production application environment and the developer experience, you will own and deliver in service of quarterly goals on the team. Based out of British Columbia, you will report into the Senior Manager, DevOps. - Design and build software - tools, libraries, automation, services, and glue scripts - Responsible for the reliability, security, and integrity of our large, cloud-based Linux infrastructure - Participate in a flexible on-call rotation - Lead by owning project milestones, epics or features - Practice continuous improvement, contributing to culture, process, and direction in your team and across our department - Develop processes and automation to eliminate repetitive tasks - Design and build our infrastructure platform - Identify and implement new platform features - Research and evaluate new technologies - Refactor, rewrite or retire existing platform features - Operate our developer experience and production application environments - Diagnose and repair our distributed systems - Perform maintenance, upgrades, and migrations - Control or eliminate repetitive tasks, alert noise, and business-as-usual work - Enable development teams - Provide executable interfaces to our infrastructure platform - Provide tools and best practices to support the entire software development lifecycle - Collaborate with others across the organization to solve problems and build better processes, systems, and software - Communicate by mentoring, writing documentation, participating in meetings, and sharing your work at demos Qualifications - A degree in Computer Science or Engineering - At least 5 years of experience in an SRE, DevOps or software engineering role - Track record of substantial contributions to software projects with high business impact - Experience with mentoring, coaching, and pairing with coworkers - Experience writing clean code that performs well at scale - Understanding of SaaS software development practice; ideally experience working on a SaaS product - Experience using infrastructure-as-code tools to build and run cloud infrastructure - Experience with operating, building and maintaining cloud infrastructure - Working knowledge of Linux systems administration, including troubleshooting system-level issues, networking (L3-L7) and basic monitoring is preferred - Collaboration and Teamwork: works with others to deliver results, meaningfully contributing to the team and prioritizing group needs over individual needs - Creativity and Innovation: seek new and better ways of doing things, generating original and imaginative ideas, products, and/or solutions - Problem Solving: uses an organized and logical approach to find solutions to complex problems and looks beyond the obvious to understand the root cause of problems and proposes several possible solutions - Resilience, Tolerance for Change/Ambiguity: can effectively cope with change, finding ways to advance work and projects Who You Are - Solution seeker: You’re focused on tackling new challenges, solving problems, and moving the business forward—and you don’t wait to be asked. - Lifelong learner: You have a growth mindset – you’re here to learn, experiment, seek, apply, and provide feedback, share what works with your team, and move on from what doesn’t. - Resilient adapter: In the face of change and challenges, you bring a thoughtful, calm approach, and a focus on finding the new opportunity. - Intentional collaborator: You build positive working relationships across the business, bringing people together to foster new opportunities and to facilitate the efficient flow of information. - Critical challenger: You have the trust in your team to ask difficult questions in order to get to the best end result. - Active communicator: You listen actively and communicate ideas and information clearly, inclusively, and proactively. - Integrated thinker: You look beyond your role and responsibilities to understand how your team’s work drives broader organizational goals. - Accountable owner: You take pride in the work you’re responsible for with a mindset of ultimate accountability and reliability for the outcomes. - Bar-raiser: You step up to help your team grow and succeed, even when that means going beyond what might be expected. Guiding Principles - Step Up: Show the world what it looks like to live and work by these guiding principles. #StepUp - One Team: Make Hootsuite a place where everyone feels safe, welcome, valued, and empowered to do their best work without compromising who they are. #OneTeam #FreeToBeMe - Customer Obsessed: Focus relentlessly on helping our customers succeed. #CustomerObsessed - Go Fast, Be Agile: Widen our competitive advantage by committing to speed and simplicity over perfection and complexity. #GoFastBeAgile - Play to Win: Commit to building an incredible, profitable company for our customers, our employees, and our stakeholders. #PlayToWin #NoExcuses - Neighbours & Allies: Give back to our communities and be an ally. #SocialForGood #Allies Accommodations Accommodations will be provided as requested by candidates taking part in all aspects of the selection process. Pay Range Canada Pay Range For This Role: $115,400 — $161,600 CAD Use of AI in Hiring Hootsuite uses artificial intelligence (AI) to support our recruitment process. These tools may assist with screening and assessing applicants and/or summarizing interview feedback. All final hiring decisions are made by human decision-makers who use their professional judgement to review and evaluate relevant candidate information in addition to AI outputs. For more information about how we use AI and your rights, please see our Careers Privacy Policy.

Canada
C$115.4K - C$161.6K / year